- Patent Title: Dynamically defining encryption spaces across multiple data centers
-
Application No.: US15900820Application Date: 2018-02-21
-
Publication No.: US10708223B2Publication Date: 2020-07-07
- Inventor: Ravi Kumar Reddy Kottapalli , Madhavan Srinivass Sampath , Srinivas Sampatkumar Hemige
- Applicant: NICIRA, INC.
- Applicant Address: US CA Palo Alto
- Assignee: Nicira, Inc.
- Current Assignee: Nicira, Inc.
- Current Assignee Address: US CA Palo Alto
- Priority: com.zzzhc.datahub.patent.etl.us.BibliographicData$PriorityClaim@e603ec2
- Main IPC: G06F15/177
- IPC: G06F15/177 ; H04L29/12 ; H04L12/66 ; H04L29/06 ; H04L12/24 ; H04L29/08

Abstract:
Described herein are systems, methods, and software to enhance the management of encryption addressing across multiple virtual computing sites. In one implementation, a first edge gateway at a first computing site may obtain, via border gateway protocol (BGP), one or more internet protocol (IP) address prefixes from a second edge gateway of a second computing site. The first edge gateway may further update an access control list (ACL) at the first edge gateway based on the one or more prefixes, wherein the ACL provides permissions in IPSec communications between a plurality of virtual nodes at the first computing site and a plurality of virtual nodes at the second site. Once the ACL is updated, the first edge gateway may forward communications based on the ACL using IPSec protocol.
Public/Granted literature
- US20190199679A1 DYNAMICALLY DEFINING ENCRYPTION SPACES ACROSS MULTIPLE DATA CENTERS Public/Granted day:2019-06-27
Information query